VDB
CVE-2010-0424
CVE-2010-0424
PUBLISHED
CVSS 3.299999952316284 LOW
The edit_cmd function in crontab.c in (1) cronie before 1.4.4 and (2) Vixie cron (vixie-cron) allows local users to change the modification times of arbitrary files, and consequently cause a denial of service, via a symlink attack on a temporary file in the /tmp directory.
EPSS 0.35% · 27.2th percentile
Risk Scores
CVSS 2.0
3.299999952316284
EPSS Score
0.35%
27.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| paul_vixie | vixie_cron | |
| n/a | n/a | n/a |
| fedorahosted | cronie | 0 |
Timeline
- Feb 25, 2010 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- 38391 vdb
- 38700 third-party-advisory
- 48104 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2010-0424 advisory
- http://git.fedorahosted.org/git/cronie.git?p=cronie.git;a=commit;h=9e4a8fa5f9171fb724981f53879c9b20264aeb61 url
- http://secunia.com/advisories/38741 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=565809 technical
- http://git.fedorahosted.org/git/cronie.git?p=cronie.git%3Ba=commit%3Bh=9e4a8fa5f9171fb724981f53879c9b20264aeb61 technical
- http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035762.html technical